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(57) ABSTRACT 

Security is provided for a docking station. Within the 
docking station a docking password is stored. Upon a 
portable computer being attached to the docking station, a 
password stored in the portable computer is compared to the 
docking password; If the password stored in the portable 
computer is equal to the docking password, the portable 
computer is allowed to access the docking station. If the 
password stored in the portable computer is not equal to the 
docking password, the portable computer is prevented from 
accessing the docking station. 
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PASSWORD PROTECTION FOR COMPUTER 
DOCKING STATION 

BACKGROUND 

The present invention concerns docking stations for por- 
table computers and pertains particularly to password pro- 
tection for a computer docking station. 

Generally a portable computer, such as a notebook 
computer, a laptop computer or a palm top computer, is 
optimized to reduce size and weight. This often requires 
tradeoffs, for example, in the size of the display and 
keyboard, as well as the number and types of pons which are 
implemented. 

One way to increase the versatility of portable computers 
is to provide for a docking station. The docking station when 
connected to a portable computer provides for a number of 
different types of ports. These ports are used, for example, 
to drive a large monitor, communicate with various periph- 
erals provide connection to a network, and so on. See for 
example, U.S. Pat. No. 5,283,714 issued to Collins Tsai, et 
al, for "Docking Apparatus for a Portable Computer." 

The docking station may reside in a permanent location 
with ports connected to various devices. When "at the 
office" a user can take advantage of the power of a full 
desktop computer by connecting the portable computer to 
the docking station. When "on the road" the user has the 
advantage of a light weight and small sized personal com- 
puter. 

Typically, a docking station can be accessed by any 
portable computer with a matching interface. This however, 
can allow for a weakness in security. Particularly, any 
portable computer which is able to dock to a docking station 
can gain access to networks, storage devices such as disk 
drives, printers, etc. which are attached to the docking 
station. In some environments such free access is undesir- 
able. 

One way to prevent access to a docking station is to use 
a mechanical lock which requires a physical key. When the 
docking station is not in used, the mechanical lock can be 
used to prevent unauthorized docking to the docking station. 
In order to access the locked docking station using a 
personal computer, a user is required to unlock the docking 
station using the physical key. However, some users may 
view this security method as inconvenient. Further, in order 
to use this security method it is necessary to keep track of the 
physical key. 

SUMMARY OF THE INVENTION 

In accordance with the preferred embodiment of the 
present invention, security is provided for a docking station. 
Within the docking station a docking password is stored. 
Upon a portable computer being attached to the docking 
station, a password stored in the portable computer is 
compared to the docking password. If the password stored in 
the portable computer is equal to the docking password, the 
portable computer is allowed to access the docking station. 
If the password stored in the portable computer is not equal 
to the docking password, the portable computer is prevented 
from accessing the docking station. 

In the preferred embodiment, a security activation flag is 
also stored within the docking station. When the security 
activation flag is true, the docking password is used as 
described above. When the security activation flag is not 
true, no security is implemented and upon a portable com- 
puter being attached to the docking station, the portable 
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computer is allowed to access the docking station. Likewise, 
when the docking password has a null value, security is not 
implemented and upon a portable computer being attached 
to the docking station, the portable computer is allowed to 

5 access the docking station. 

Also in the preferred embodiment, an administrator pass- 
word activation flag is stored within the docking station. 
When the administrator password activation flag is true, this 
indicates that an administrator password is to be used as the 

30 password which is compared to the docking password. 
When the administrator password activation flag is not true, 
this indicates that a user password is to be used as the 
password which is compared to the docking password. 
However, when the administrator password activation flag is 

15 not true and the user password has a null value, the admin- 
istrator password is used as the password which is compared 
to the docking password. 

The present invention allows for simple, elegant and 
automatic way to provide protection for a docking station. 

20 The protection does not require a user or administrator to 
utilize a separate password. Additionally there is no physical 
key of which there is a need to keep track. 

BRIEF DESCRIPTION OF THE DRAWINGS 

25 

FIG. 1 is a simplified illustration of a portable computer 
and a docking station. 

FIG. 2 is a simplified illustration which portrays the 
portable computer and the docking station shown in FIG. 1 

30 in a docked position. 

FIG. 3 is a simplified block diagram which shows various 
flags and passwords stored in the portable computer and the 
docking station shown in FIG. 1, in accordance with a 
preferred embodiment of the present invention. 

35 FIG. 4 is a flowchart which illustrates how the various 
flags and passwords stored in the portable computer and the 
docking station shown in FIG. 1 are used to provide security 
to the docking station in accordance with a preferred 
embodiment of the present invention. 

40 FIG. 5 and FIG. 6 are flowcharts which illustrate how the 
various flags and passwords stored in the portable computer 
and the docking station are changed in accordance with a 
preferred embodiment of the present invention. 

45 DESCRIPTION OF THE PREFERRED 

EMBODIMENT 

FIG. 1 shows a docking station 41 which provides for 
communication with a portable computer 40. 

50 FIG. 2 shows portable computer 40 in a docked position 
with docking station 41. In FIG. 2, the back side of docking 
station 41 is shown to include, for various ports, a physical 
connector 31, a physical connector 32, a physical connector 
33, a physical connector 34, a physical connector 35 and a 

55 physical connector 36. A physical connector 37 for power is 
also shown. 

Physical connectors 31 through 36 are illustrative physi- 
cal connectors for various types of ports which may include, 
for example, one or more serial ports, parallel ports, PS/2 

60 ports, universal serial bus (USB) ports, network connection/ 
port or some other combination of standard or non-standard 
ports used in conjunction with a personal computer. 

The present invention prevents docking station 41 (and 
thus devices attached to physical connectors 31 through 36) 

65 from being accessed by portable computer 40 unless por- 
table computer 40 has been authorized to use docking station 
41. FIG. 3 shows various flags and passwords stored in 
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portable computer 40 and docking station 41 in order to activated, no portable computer is allowed access to docking 

implement this security feature. station 41 unless docking password 55 matches the user 

FIG. 3 shows an administrator (or supervisor) password password stored in the portable computer. In the case where 

(ADMINPWD) 51 and a user password (USERPWD) 52 the user password is null and administrator password acti- 

stored in non-volatile memory (such as an EEPROM) within 5 vation flag 54 is false, no portable computer is allowed 

portable computer 40. access to docking station 41 unless docking password 55 

Administrator password 51 is used by a system adminis- matches the administrator password stored in the portable 

trator to protect portable computer 40 from unauthorized computer. 

configuration changes by the end user. If the user of portable The presence of administrator password activation flag 54 

computer 40 is also the administrator, administrator pass- 10 accomplishes the goal of allowing groups of portable com- 

word 51 may also be used instead of user password and user puters to access a single shared docking station. When 

password 52 can be left blank (NULL). administrator password activation flag 54 is true, this allows 

User password 52 is used by the user of portable computer anv portable computer with a matching administrator pass- 

40 to prevent unauthorized access to portable computer 40. word to use docking station 41. Each such portable computer 

For example, user password 51 must be entered into portable 35 ^ p ole 10 utilize docking station 41 while still retaining a 

computer 40 before portable computer will allow access to unique user password, 

information and programs stored on personal computer 40. FIG. 4 is a flowchart which illustrates how the various 

Administrator password 51 may be entered whenever user flags and passwords stored in portable computer 40 and 

password 52 is requested. In a typical system the adminis- docking station 41 are used to provide security to docking 

trator can configure the system to require entry of adminis- station 41. In the embodiment shown in FIG. 4, the 

trator password 51 before allowing portable computer 40 to described flowchart is performed in portable computer 40, 

undock from docking station 41. for example using a processor 56 shown in FIG. 3. In an 

For more information on use of administrator passwords alternative embodiment of the present invention, the flow- 

and user passwords, see for example, HP OmniBook 800 chart ma y be performed within docking station 41 using a 

User's Guide, 1996 available on the internet at http:// processor 57 shown in FIG. 3. 

www.hp.com/go/omnibook or from Hewlett-Packard The docking password handling routine is entered in a 

Company, Mobile Computing Division, 1000 N. E. Circle step 61. In a step 62, security activation flag 

Blvd., Corvallis, Oreg. 97330. (NEEDDOCKPWD) 53 and administrator password activa- 

While use of administrator password 51 and user pass- 30 tion flag (DOCKPWDADMIN) 54 are fetched from docking 

word 52, as described above, protects portable computer 40 station 41. 

from unauthorized access and protects portable computer 40 In a step 63 a check is made to see if security activation 

from unauthorized removal from docking station 41, such flag (NEEDDOCKPWD) 53 is true. If in step 63 security 

use of administrator password 51 and user password 52 does activation flag (NEEDDOCKPWD) 53 is false, in a step 71, 

not protect devices connected to docking station 41 from 35 docking station 41 is enabled. 

being accessed by inserting into docking station 41a differ- j f in step 63 se^ty activation flag (NEEDDOCKPWD) 

ent portable computer of the same kind as portable computer 53 ^ tniCj in a step 64j docking paS sword (DOCKPWD) 55 

40- is fetched from docking station 41. 

To prevent the ^unautboraed use of docking station 41 a Iq a a a cfaeck h made , 0 ^ if docki Qrd 

docking password (DOC^WD) 55 is stored in non-volati e « (D0C KPWD) 55 is NULL. If in step 65 docking password 

memory (such as an EEPROM) within docking station 41. (D0C KPWD) 55 is NULL, in step 71, docking station 41 is 

When security for docking station 41 is activated, portable enabled 

computer 40 (or any other portable computer) is not allowed ¥JJ . ' ^ t . j «^™t.«™y « • 

access to docking station 41 unless docking password 55 * f T m ste P 65 docking password (DOCKPWD) 55 is not 

matches administrator password 51 or user password 52. 45 7 " a stc P 66 >J > ^^J^^ t l ^^^i 

j , r j u i- . • n password activation flag (DOCKPWDADMIN) 54 is true. If 

In the preferred embodiment, a security adivation nag f cc , . . , ^ , / . „ 

/vT^i-rM^™™™™ ei • . i ■ t . i m step 66, administrator password activation nag 

(NEEDDOCKPWD) 53 is stored in non-volatile memory ,nnr-vr>\\iA at^txa za • * ♦ cn • i * j 

v . , . , . . - a* vim. a mi (DOCKPWDADMIN) 54 is true, a step 67 is skipped, 

within docking station 41. When security activation nag 53 - . . . 

is true, this indicates that security for docking station 41 has If 10 ste P 66 ' administrator password activation flag 
been activated and that no portable computer is allowed so (DOCKPWDADMIN) 54 is not true, in step 67, a check is 
access to docking station 41 unless docking password 55 made t0 see lf ^ Password (USERPWD) 52 is null. If in 
matches an administrator password or a user password sle P 67 ' Password (USERPWD) 52 is null, in a step 68 a 
stored in the portable computer, as further described below. ? f ^ c J? 566 lf admin j str , ator Password 
When security activation flag 53 is false, this indicates that 15 t0 d ° Cking P assword 
security for docking station 41 has been deactivated and that 55 ( D0CKPWD ) 55 - „ 
a portable computer can have access to docking station 41 'If in step 68 administrator password (ADMINPWD) 51 is 
without requiring a match for docking password 55. equal to docking password (DOCKPWD) 55, in step 71 
Also in the preferred embodiment, an administrator pass- dockin & station 41 » enabled. If in step 68 administrator 
word activation flag (DOCKPWDADMIN) 54 is also stored password (ADMINPWD) 51 is not equal to docking pass- 
in non-volatile memory within docking station 41. When 60 word (DOCKPWD) 55, in a step 70 docking station 41 is not 
administrator password activation flag 54 is true, this indi- enabled. 

cates that when security for docking station 41 has been If in step 67, password (USERPWD) 52 is not null, in a 

activated, no portable computer is allowed access to docking step 69 a check is made to see if user password (USERPWD) 

station 41 unless docking password 55 matches the admin- 52 is equal to docking password (DOCKPWD) 55. 

istralor password stored in the portable computer. When 65 If in step 69 user password (USERPWD) 52 is equal to 

administrator password activation flag 54 is false, this indi- docking password (DOCKPWD) 55, in step 71 docking 

cates that when security for docking station 41 has been station 41 is enabled. If in step 69 user password 



03/25/2004, EAST version: 1.4.1 



US 6,175,926 Bl 



(USERPWD) 52 is not equal to docking password 
(DOCKPWD) 55, in step 70 docking station 41 is not 
enabled. 

In order to maintain coherence between docking password 
55 and an associated password within portable computer 40, 5 
when the associated password in portable computer 40 is 
updated, docking password 55 must be updated as well. For 
example, when administrator password activation flag 54 is 
true, when administrator password 51 is updated, then 
docking password 55 is updated as well. Likewise, when 10 
administrator password activation flag 54 is false, when user 
password 52 is updated, then docking password 55 is 
updated as well. 

Coherence between docking password 55 and an associ- 
ated password within portable computer 40 is best main- 15 
tained by changing the associated password only when 
portable computer 40 is docked to docking station 41. 

FIG. 5 is a flowchart which illustrates how user password 
(USERPWD) 52 is changed. 2Q 

The user password set-up routine is entered in a step 81. 
In a step 82 a check is made to see if the current value of user 
password (USERPWD) 52 is NULL. If not, in a step 83 a 
password is received from a user of the user password set-up 
routine. In a step 84, a check is made to see if the password 2 5 
received from the user is equal to user password 
(USERPWD) 52. 

If in step 83, the password received from the user is equal 
to user password (USERPWD) 52, or if in step 82 the current 
value of user password (USERPWD) 52 is NULL, the user 30 
password set-up routine proceeds to a step 85. In step 85, the 
user can change the value of user password 52. As illustrated 
by a step 86, the user password set-up routine waits for the 
user to indicate changes are complete (e.g., by selecting an 
OK button in a user set-up window) before proceeding to a 35 
step 87. 

In step 87 a check is made to see if security activation flag 
(NEEDDOCKPWD) 53 is true. If in step 87 security acti- 
vation flag (NEEDDOCKPWD) 53 is not true, in a step 90, 
the user password set-up routine is exited. 

If in step 87 security activation flag (NEEDDOCKPWD) 
53 is true, in a step 88 a check is made to see if administrator 
password activation flag (DOCKPWD ADMIN) 54 is true. If 
in step 88 administrator password activation flag 
(DOCKPWDADMIN) 54 is true, then in step 90, the user 
password set-up routine is exited. 

If in step 88 administrator password activation flag 
(DOCKPWDADMIN) 54 is not true, in a step 89, docking 
password (DOCKPWD) 55 is set equal to user password 5Q 
(USERPWD) 52. Then in step 90, the user password set-up 
routine is exited. 

FIG. 6 is a flowchart which illustrates how administrator 
password (ADMINPWD) 51 is changed. 

The administrator password set-up routine is entered in a 55 
step 91. In a step 92 a check is made to sec if the current 
value of administrator password (ADMINPWD) 51 is 
NULL. If so, in a step 93 a password is received from a user 
of the administrator password set-up routine. In a step 94, a 
check is made to see if the password received from the user eo 
is equal to administrator password (ADMINPWD) 51. 

If in step 94, the password received from the user is equal 
to administrator password (ADMINPWD) 51, or if in step 
92 the current value of administrator password 
(ADMINPWD) 51 is NULL, the administrator password 65 
set-up routine proceeds to a step 95. In step 95 an admin- 
istrator set-up window allows the administrator to change 
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the values of administrator password 51, security activation 
flag 53 and/or administrator password activation flag 54. As 
illustrated by a step 96, the administrator password set-up 
routine waits for the administrator to indicate changes are 
complete (e.g., by selecting an OK button in the adminis- 
trator set-up window) before proceeding to a step 97. 

In step 97 a check is made to see if security activation flag 
(NEEDDOCKPWD) 53 is true. If in step 97 security acti- 
vation flag (NEEDDOCKPWD) 53 is not true, in a step 100, 
the administrator password sel-up routine is exited. 

If in step 97 security activation flag (NEEDDOCKPWD) 
53 is true, in a step 98 a check is made to see if administrator 
password activation flag (DOCKPWDADMIN) 54 is true. If 
in step 98 administrator password activation flag 
(DOCKPWDADMIN) 54 is true, in a step 101, docking 
password (DOCKPWD) 55 is set equal to administrator 
password (ADMINPWD) 51. Then in step 100, the admin- 
istrator password set-up routine is exited. 

If in step 98 administrator password activation flag 
(DOCKPWDADMIN) 54 is not true, in a step 102, a check 
is made to see if user password (USERPWD) 52 is equal to 
NULL. If in step 102, user password (USERPWD) 52 is 
equal to NULL, in a step 99 docking password 
(DOCKPWD) 55 is set equal to administrator password 
(ADMINPWD) 51. Then in step 100, the password set-up 
routine is exited. If in step 102, user password (USERPWD) 
52 is not equal to NULL, in step 100, the password set-up 
routine is exited. 

The foregoing discussion discloses and describes merely 
exemplary methods and embodiments of the present inven- 
tion. As will be understood by those familiar with the art, the 
invention may be embodied in other specific forms without 
departing from the spirit or essential characteristics thereof 
Accordingly, the disclosure of the present invention is 
intended to be illustrative, but not limiting, of the scope of 
the invention, which is set forth in the following claims. 

I claim: 

1. A method for providing security to a docking station 
comprising the following steps: 

(a) storing a docking password within the docking station; 

(b) upon a portable computer being attached to the 
docking station, performing the followings substeps: 
(b.l) comparing a password stored in the portable 

computer to the docking password, 

(b.2) if the password stored in the portable computer is 
equal to the docking password, allowing the portable 
computer to access the docking station, and 

(b.3) if the password stored in the portable computer is 
not equal to the docking password, preventing the 
portable computer from accessing the docking sta- 
tion; and, 

(c) storing an administrator password activation flag 
within the docking station; 

wherein substep (b.l) includes the followings substeps: 
(b.1.1) using an administrator password as the pass- 
word which is compared to the docking password 
when the administrator password activation flag is 
true, and 

(b.1.2) using a user password as the password which 
is compared to the docking password when the 
administrator password activation flag is not true. 

2. A method as in claim 1 additionally comprising the 
following steps: 

(d) storing a security activation flag within the docking 
station; 

wherein step (b) is performed when the security acti- 
vation flag is true; and, 
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wherein when the security activation flag is not true, 
performing the following step instead of step (b): 
(e) upon a portable computer being attached to the dock- 
ing station, allowing the portable computer to access 
the docking station. 5 

3. A method as in claim 1 wherein in substep (b.1.2), when 
the administrator password activation flag is not true and the 
user password has a null value, using the administrator 
password as the password which is compared to the docking 
password. 30 

4. A method as in claim 1 wherein when in step (a) the 
docking password has a null value, performing the following 
step instead of step (b): 

(d) upon a portable computer being attached to the 
docking station, allowing the portable computer to 35 
access the docking station. 

5. Storage media which stores a software program which, 
when executed, performs a method comprising the follow- 
ing step: 2q 

(a) upon a portable computer being attached to a docking 
station, performing the followings substeps: 
(a.l) obtaining a docking password stored in the dock- 
ing station, 

(a.2) comparing a password stored in the portable 25 
computer to the docking password, 

(a .3) if the password stored in the portable computer is 
equal to the docking password, allowing the portable 
computer to access the docking station, and 

(a .4) if the password stored in the portable computer is 3Q 
not equal to the docking password, preventing the 
portable computer from accessing the docking sta- 
tion; 

wherein substep (a.l) comprises the following sub- 
step: 35 
(a. 1.1) obtaining an administrator password acti- 
vation flag from within the docking station; 
and, 

wherein substep (a.2) includes the followings sub- 
steps: 4Q 
(a.2.1) using an administrator password as the 
password which is compared to the docking 
password when the administrator password 
activation flag is true, and 
(a.2.2) using a user password as the password 45 
which is compared to the docking password 
when the administrator password activation 
flag is not true. 

6. Storage media as in claim 5 wherein in substep (a. 2.2), 
when the administrator password activation flag is not true 5Q 
and the user password has a null value, using the adminis- 
trator password as the password which is compared to the 
docking password. 

7. Storage media as in claim 5 wherein substep (a.l) 
additionally comprises the following substeps: 55 

(a. 1.2) obtaining a security activation flag from within the 

docking station; and, 
(a. 1.3) when the security activation flag is true proceeding 

to perform substep (a.2), substep (a .3) and substep 

(a.4); 
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wherein when the security activation flag is not true, 
performing the following substep instead of substep 
(a.2), substep (a.3) and substep (a.4): 
(a. 5) allowing the portable computer to access the 
docking station. 

8. Storage media as in claim 5 wherein when in substep 
(a.l) the docking password has a null value, performing the 
following substep instead of substep (a.2), substep (a.3) and 
substep (a.4): 

(a. 5) allowing the portable computer to access the dock- 
ing station. 

9. A docking station comprising: 

storage means for storing a docking password within the 
docking station; and, 

protection means for, upon a portable computer being 
attached to the docking station, comparing a password 
stored in the portable computer to the docking 
password, the protection means allowing the portable 
computer to access the docking station when the pass- 
word stored in the portable computer is equal to the 
docking password, and the protection means preventing 
the portable computer from accessing the docking 
station when the password stored in the portable com- 
puter is not equal to the docking password; 

wherein the storage means is additionally for storing an 
administrator password activation flag within the dock- 
ing station; 

wherein the protection means uses an administrator pass- 
word as the password which is compared to the docking 
password when the administrator password activation 
flag is true; and, 

wherein the protection means uses a user password as the 
password which is compared to the docking password 
when the administrator password activation flag is not 
true. 

10. A docking station as in claim 9, when the adminis- 
trator password activation flag is not true and the user 
password has a null value, the protections means uses the 
administrator password as the password which is compared 
to the docking password. 

11. A docking station as in claim 10 wherein when the 
docking password has a null value, the protection means 
allows the portable computer to access the docking station 
without comparing the password stored in the portable 
computer to the docking password. 

12. A docking station as in claim 9: 

wherein the storage means is additionally for storing a 
security activation flag within the docking station; and, 

wherein when the security activation flag is not true the 
protection means allows the portable computer to 
access the docking station without comparing the pass- 
word stored in the portable computer to the docking 
password. 
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